CVE-2023-48055

SuperAGI v0.0.13 was discovered to use a hardcoded key for encryption operations. This vulnerability can lead to the disclosure of information and communications.
Configurations

Configuration 1 (hide)

cpe:2.3:a:superagi:superagi:0.0.13:*:*:*:*:*:*:*

History

22 Nov 2023, 18:24

Type Values Removed Values Added
First Time Superagi superagi
Superagi
CPE cpe:2.3:a:superagi:superagi:0.0.13:*:*:*:*:*:*:*
References () https://gxx777.github.io/SuperAGI_v0.0.13_Cryptographic_API_Misuse_Vulnerability.md - () https://gxx777.github.io/SuperAGI_v0.0.13_Cryptographic_API_Misuse_Vulnerability.md - Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-798

16 Nov 2023, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-16 18:15

Updated : 2023-12-10 15:26


NVD link : CVE-2023-48055

Mitre link : CVE-2023-48055

CVE.ORG link : CVE-2023-48055


JSON object : View

Products Affected

superagi

  • superagi
CWE
CWE-798

Use of Hard-coded Credentials